summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDamien Miller <djm@cvs.openbsd.org>2014-01-30 22:26:15 +0000
committerDamien Miller <djm@cvs.openbsd.org>2014-01-30 22:26:15 +0000
commit7216f0e3fda85dee8fc4113c87eae2f22747858f (patch)
treeb10cba20c4a5f144cc09b25e4f5a15cf4a2c0956
parente161f073d9835d140e4f863d20a63ab15cfd9092 (diff)
allow shutdown(2) syscall in sandbox - it may be called by packet_close()
from portable
-rw-r--r--usr.bin/ssh/sandbox-systrace.c3
1 files changed, 2 insertions, 1 deletions
diff --git a/usr.bin/ssh/sandbox-systrace.c b/usr.bin/ssh/sandbox-systrace.c
index 6259ed50f51..88089dedc11 100644
--- a/usr.bin/ssh/sandbox-systrace.c
+++ b/usr.bin/ssh/sandbox-systrace.c
@@ -1,4 +1,4 @@
-/* $OpenBSD: sandbox-systrace.c,v 1.7 2013/06/01 13:15:52 dtucker Exp $ */
+/* $OpenBSD: sandbox-systrace.c,v 1.8 2014/01/30 22:26:14 djm Exp $ */
/*
* Copyright (c) 2011 Damien Miller <djm@mindrot.org>
*
@@ -62,6 +62,7 @@ static const struct sandbox_policy preauth_policy[] = {
{ SYS_munmap, SYSTR_POLICY_PERMIT },
{ SYS_read, SYSTR_POLICY_PERMIT },
{ SYS_select, SYSTR_POLICY_PERMIT },
+ { SYS_shutdown, SYSTR_POLICY_PERMIT },
{ SYS_sigprocmask, SYSTR_POLICY_PERMIT },
{ SYS_write, SYSTR_POLICY_PERMIT },
{ -1, -1 }